Bug#1014900: bullseye-pu: package node-moment/2.29.1+ds-2+deb11u2

2022-08-06 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2022-07-14 at 07:44 +0200, Yadd wrote: > node-moment is vulnerable to ReDoS (#1014845, CVE-2022-31129) > Please go ahead. Regards, Adam

Bug#1014900: bullseye-pu: package node-moment/2.29.1+ds-2+deb11u2

2022-07-13 Thread Yadd
Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu [ Reason ] node-moment is vulnerable to ReDoS (#1014845, CVE-2022-31129) [ Impact ] Medium security issue [ Tests ] Sadly there is no test in this package. [ Risks ] Low risk,